|
491
|
7.8 |
HIGH
Local
|
-
|
-
|
AGL app-framework-binder (afb-daemon) through v19.90.0 contains a privilege escalation vulnerability in the supervision Do command. The on_supervision_call function in src/afb-supervision.c explicitl…
New
|
-
|
CVE-2026-37525
|
2026-05-2 02:16 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
492
|
6.5 |
MEDIUM
Network
|
prosody
|
prosody
|
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5, when mod_proxy65 is enabled. Because mod_proxy65 mishandles access control in the activation scenario, relayin…
New
|
CWE-420
Unprotected Alternate Channel
|
CVE-2026-43505
|
2026-05-2 02:15 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
493
|
6.5 |
MEDIUM
Network
|
prosody
|
prosody
|
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5, when mod_proxy65 is enabled. Because mod_proxy65 mishandles access control in a paused scenario, relaying of u…
New
|
CWE-863
Incorrect Authorization
|
CVE-2026-43504
|
2026-05-2 02:15 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
494
|
7.5 |
HIGH
Network
|
prosody
|
prosody
|
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5. A Denial of Service can occur via memory exhaustion caused by memory leaks from unauthenticated connections.
New
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2026-43506
|
2026-05-2 02:09 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
495
|
7.5 |
HIGH
Network
|
prosody
|
prosody
|
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5. A Denial of Service can occur via memory exhaustion caused by XML parsing resource amplification from unauthen…
New
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-43507
|
2026-05-2 02:09 |
2026-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
496
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Update
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-5653
|
2026-05-2 02:04 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
497
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
AMR-NB codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Update
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-5654
|
2026-05-2 02:02 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
498
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
SDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 allows denial of service
Update
|
CWE-416
Use After Free
|
CVE-2026-5655
|
2026-05-2 01:49 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
499
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
iLBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Update
|
CWE-415
Double Free
|
CVE-2026-5657
|
2026-05-2 01:45 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
500
|
7.5 |
HIGH
Network
|
wireshark
|
wireshark
|
MBIM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Update
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2026-6519
|
2026-05-2 01:41 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|